TROYANOSYVIRUS
Back to CVEs

CVE-2014-9493

N/A

Description

The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.2.2 and 2014.1.4 allows remote authenticated users to read or delete arbitrary files via a full pathname in a file: URL in the image location property.

CVE Details

CVSS v3.1 ScoreN/A
Published1/7/2015
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0

Affected Products

openstack:image_registry_and_delivery_service_\(glance\)redhat:openstack

Weaknesses (CWE)

CWE-264

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.